[ All 3 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Package ruby-bundled-gems-3.3.10-5.module+el9.7.0+776+1b340331.x86_64 download

Name ruby-bundled-gems
Epoch 0
Version 3.3.10
Release 5.module+el9.7.0+776+1b340331
Architecture x86_64
Website/URL https://www.ruby-lang.org/
License (Ruby OR BSD-2-Clause) AND (Ruby OR BSD-2-Clause OR GPL-1.0-or-later) AND BSD-3-Clause AND (GPL-3.0-or-later WITH Bison-exception-2.2) AND ISC AND LicenseRef-Fedora-Public-Domain AND MIT AND CC0 AND zlib AND Unicode-DFS-2015 AND HPND-Markus-Kuhn AND Ruby-pty
Build Time 2025-12-11 21:31:44
Build Host builder-x86-05.inferitos.ru
Summary Bundled gems which are part of Ruby StdLib
Repositories AppStream
Description Bundled gems which are part of Ruby StdLib. While being part of Ruby, these needs to be listed in Gemfile to be used by Bundler.
Errata
Size 299 KiB
Source Project ruby-3.3.10-5.module+el9.7.0+776+1b340331
SHA-256 checksum 71d81aa143b669c270bd81b28be6e5da4e05033090b5e9aa3e1aff58e2f9bf3f
× Full screenshot
Changelog link
* Wed Nov 05 2025 Jun Aruga <jaruga@redhat.com> - 3.3.10-5
- Upgrade to Ruby 3.3.10.
  Resolves: RHEL-127912
- Fix possible denial of service in resolv gem (CVE-2025-24294)
- Fix URI Credential Leakage Bypass previous fixes. (CVE-2025-61594)
- Fix REXML denial of service. (CVE-2025-58767)
  Resolves: RHEL-122015

* Fri Apr 11 2025 Jarek Prokop <jprokop@redhat.com> - 3.3.8-4
- Upgrade to Ruby 3.3.8.
  Resolves: RHEL-68631
- Fix Net::IMAP vulnerable to possible DoS by memory exhaustion. (CVE-2025-25186)
- Fix Denial of Service in CGI::Cookie.parse. (CVE-2025-27219)
  Resolves: RHEL-86109
- Fix userinfo leakage in URI#join, URI#merge and URI#+. (CVE-2025-27221)

* Wed Sep 04 2024 Jarek Prokop <jprokop@redhat.com> - 3.3.5-3
- Upgrade to Ruby 3.3.5
  Resolves: RHEL-55411
- Fix DoS vulnerability in rexml.
  (CVE-2024-39908)
  (CVE-2024-41946)
  (CVE-2024-43398)
  Resolves: RHEL-57575
  Resolves: RHEL-57572
  Resolves: RHEL-57068
- Fix REXML DoS when parsing an XML having many specific characters such as
  whitespace character, >] and ]>.
  (CVE-2024-41123)
  Resolves: RHEL-57569
- Fix incorrect symlink for rubygem-irb's library.
  Resolves: RHEL-42646

* Fri Jun 07 2024 MSVSphere Packaging Team <packager@msvsphere-os.ru> - 3.3.1-2
- Rebuilt for MSVSphere 9.4

* Mon May 20 2024 Jarek Prokop <jprokop@redhat.com> - 3.3.1-2
- Upgrade to Ruby 3.3.1.
  Resolves: RHEL-33976
- Fix buffer overread vulnerability in StringIO.
  (CVE-2024-27280)
  Resolves: RHEL-34130
- Fix RCE vulnerability with .rdoc_options in RDoc.
  (CVE-2024-27281)
  Resolves: RHEL-34122
- Fix Arbitrary memory address read vulnerability with Regex search.
  (CVE-2024-27282)
  Resolves: RHEL-33872

* Wed Jan 17 2024 Jarek Prokop <jprokop@redhat.com> - 3.3.0-1
- Upgrade to Ruby 3.3.0.
  Resolves: RHEL-17089

* Sun Dec 03 2023 Jun Aruga <jaruga@redhat.com> - 3.1.2-142
- Bypass git submodule test failure on Git >= 2.38.1.
- Fix tests with Europe/Amsterdam pre-1970 time on tzdata version 2022b.
- Fix for tzdata-2022g.
- Fix OpenSSL.fips_mode and OpenSSL::PKey.read in OpenSSL 3 FIPS.
  Resolves: RHEL-5590
- ssl: use ffdhe2048 from RFC 7919 as the default DH group parameters
  Related: RHEL-5590
- Disable fiddle tests that use FFI closures.
  Related: RHEL-5590